Trojan

Should I remove “Trojan:Win32/Glupteba.DSB!MTB”?

Malware Removal

The Trojan:Win32/Glupteba.DSB!MTB is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Trojan:Win32/Glupteba.DSB!MTB virus can do?

  • Executable code extraction
  • Creates RWX memory
  • A process created a hidden window
  • The binary likely contains encrypted or compressed data.
  • A scripting utility was executed
  • Attempts to stop active services
  • Anomalous binary characteristics

How to determine Trojan:Win32/Glupteba.DSB!MTB?


File Info:

crc32: A0C9331F
md5: c151985c03fec8309ea7d5ffe0ef43fa
name: C151985C03FEC8309EA7D5FFE0EF43FA.mlw
sha1: 9abcf094d1c137b71d44924085ee876bce908b35
sha256: 5dbdf7cf6be15ad8ddcd670bbdff10e6269e137690da032c6f753908e16ce1be
sha512: fc5a0b44926782dea6768d4d6ae3e5763024dca50ca9763996db43f3236962e69f4fb7e55b234d4043c612af9874d416f59ba45695105b697e566d439bf55907
ssdeep: 3072:pu8DCFPOkBNkBNgF5feOO8A6rsbqwBpdo6RB94RUf7MHmGM2LB:sFm8SseOHAVRo6PEU77N2L
type: PE32 executable (GUI) Intel 80386, for MS Windows

Version Info:

InternalSurname: dhrj.uxe
ProductionVersion: 1.0.4.8
Copyright: Copyrighd (C) 2020, odfrjv
TranslationUzi: 0x0252 0x054e

Trojan:Win32/Glupteba.DSB!MTB also known as:

BkavW32.AIDetect.malware1
K7AntiVirusTrojan ( 0056a9ad1 )
Elasticmalicious (high confidence)
DrWebTrojan.Encoder.32119
CynetMalicious (score: 100)
ALYacTrojan.Ransom.Sodinokibi
CylanceUnsafe
ZillyaTrojan.Kryptik.Win32.2284841
SangforTrojan.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (W)
AlibabaRansom:Win32/generic.ali2000010
K7GWTrojan ( 0056a9ad1 )
Cybereasonmalicious.c03fec
CyrenW32/FakeAlert.VV.gen!Eldorado
SymantecPacked.Generic.525
ESET-NOD32a variant of Win32/Kryptik.HEUI
APEXMalicious
AvastWin32:PWSX-gen [Trj]
ClamAVWin.Dropper.Tofsee-8864407-0
KasperskyHEUR:Backdoor.Win32.Tofsee.gen
BitDefenderGen:Heur.Mint.Titirez.mqW@Za@BjxlG
NANO-AntivirusTrojan.Win32.Chapak.hnmcng
MicroWorld-eScanGen:Heur.Mint.Titirez.mqW@Za@BjxlG
TencentMalware.Win32.Gencirc.10cde2d2
Ad-AwareGen:Heur.Mint.Titirez.mqW@Za@BjxlG
SophosML/PE-A + Troj/Agent-BFEH
BitDefenderThetaGen:NN.ZexaF.34236.mqW@aa@BjxlG
VIPRETrojan.Win32.Generic!BT
McAfee-GW-EditionBehavesLike.Win32.Generic.cc
FireEyeGeneric.mg.c151985c03fec830
EmsisoftGen:Heur.Mint.Titirez.mqW@Za@BjxlG (B)
SentinelOneStatic AI – Malicious PE
JiangminTrojan.Injuke.rw
AviraTR/AD.SodinoRansom.fvtym
eGambitUnsafe.AI_Score_98%
Antiy-AVLTrojan/Generic.ASMalwS.30B6BEA
MicrosoftTrojan:Win32/Glupteba.DSB!MTB
ArcabitTrojan.Mint.Titirez.ED10759
ZoneAlarmHEUR:Backdoor.Win32.Tofsee.gen
GDataGen:Heur.Mint.Titirez.mqW@Za@BjxlG
AhnLab-V3Trojan/Win32.Tofsee.C4159372
McAfeeLockbit-GCZ!C151985C03FE
MAXmalware (ai score=87)
VBA32BScope.Trojan.Gozi
MalwarebytesTrojan.MalPack
PandaTrj/GdSda.A
RisingTrojan.Kryptik!1.C8F8 (CLASSIC)
YandexTrojan.Kryptik!YUENFPqtrjo
IkarusTrojan.Win32.Crypt
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.HFWZ!tr
AVGWin32:PWSX-gen [Trj]
Paloaltogeneric.ml

How to remove Trojan:Win32/Glupteba.DSB!MTB?

Trojan:Win32/Glupteba.DSB!MTB removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment